A cyber knowledge graph your AI agent can query
Lattice is a read-only reference graph of public cybersecurity knowledge: CVEs, ATT&CK techniques, weaknesses, threat actors, detection rules and response procedures, cross-linked. An AI agent connects to it over the Model Context Protocol (MCP) and asks questions such as “which techniques does this CVE enable, and what detects them?” The difference from a search tool is on every link: whether a source stated it, or we inferred it.
Who it is for
AI agents and the people who build them
An agent that says "likely" instead of "is".
Every link carries a source, a confidence figure and a basis, so your agent can report what a source stated and what was inferred. Discovery needs no key.
Teach your agent to say likelySOC analysts
Four questions for any new CVE.
Which techniques are associated with it, who said so, which detections exist, and what the graph does not know. The gaps are part of the answer.
A CVE, an agent, and four questionsCIOs and security leaders
Five questions before an agent relies on security reference data.
Your people may already ask assistants about CVEs. The questions apply to any vendor, and the guide answers each one for Lattice, including the parts that are not flattering.
Five questions to ask firstWhat an answer looks like
- Every link says where it came from. A source stated it, or we inferred it, and inferred links carry a confidence figure so the agent can say “likely” and not “is”.
- Gaps are reported as gaps. If a step has no data, the answer says so instead of filling it in.
- Licence notices travel with the data. Each answer names the sources whose attribution you must keep.
- Only public identifiers go in. The interface takes CVE numbers, ATT&CK ids and the like, and rejects free text, so there is nowhere to put your own data.
How it fits with what we already do
Lattice is reference knowledge. It does not look at your systems. These are the pieces that do, and the reading that goes with them.
- IT and security for small firms — The service: someone who looks after your own estate.
- The IT check — Where your own estate stands today. Reference knowledge is only useful read against something real.
- OCO — The cyber graph behind this. Lattice serves public knowledge; OCO is the product that works on an estate.
- Day-0 Watch — A reading list for when a new vulnerability lands.
- Security questionnaires — AI use can be a line on those. The CIO guide helps you answer it.
What it is not
It does not look at your systems, find anything in them, or tell you what to fix. It is reference material, it can be wrong or out of date, and inferred links are guesses. It is a test of an unfinished service: it comes as is, with no warranty, no uptime promise and no promise it will continue. Read the beta terms before you ask.
Guides
- A new CVE, an agent, and four questions — For SOC analysts, 5 minute read.
- Five questions to ask before an AI agent relies on security reference data — For CIOs and security leaders, 6 minute read.
- Teach your agent to say "likely" and not "is" — For agents and the people who build them, 4 minute read.
- Connection guide — the commands for Claude Code, Claude Desktop, Cursor and plain HTTP.
Get a trial key
Trial keys are issued automatically to the email address you give, with the server address. They have usage limits, expire, and can be withdrawn at any time. When you reach a limit you can verify your account to triple it. For unlimited or commercial use, contact [email protected].